Do you have more info? Is it function like quarantine (guest) VLAN -> VLAN for rejected / non compliant clients or just ignore PVID from radius response?*) dot1x - added "reject-vlan-id" server parameter (CLI only);
Yes, I agree. It is annoying in CAPsMAN network to manual restart every AP. APs are updated automatically from CAPsMAN, and all APs have firmware autoupdate=yes, but still required additional manual restart for firmware update.Wishes for 6.46:
- WinBox => CAPsMAN: Reboot button for CAPs
It would be better, If it possible to choose IPsec Group for L2TP, IPoIP, EoIP etc.Please add the ability to choose Proposal (in L2tp with "Use IPsec")
/interface wireless security-profiles
Any details? Please update documentation or post some explanation.*) ppp - added new option under "ppp aaa" - "use-circuit-id-in-nas-port-id";
/ip route add dst-address=0.0.0.0/0 gateway=10.0.0.10Mtik after DNAT of packet from A reroutes packets (as if Mtik sends packet). Without default gateway Mtik doesn't know, where it should send packets.
add action=dst-nat chain=dstnat disabled=no dst-address=188.8.131.52 in-interface=bridge-4-5 in-bridge-port=ether4-slave-local \ to-addresses=184.108.40.206And add default route to your LAN gateway in Mtik. It should start working.